Skip to main content

Java Runtime Environment (JRE) vulnerabilities

2 published alerts for Oracle Java Runtime Environment (JRE).

Actively exploited (KEV)Ransomware

CVE-2013-0431

Oracle JRE Sandbox Bypass Vulnerability

Oracle Java Runtime Environment (JRE) is listed in CISA's Known Exploited Vulnerabilities catalog (CVE-2013-0431). Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle allows remote attackers to bypass the Java security sandbox. CISA remediation due date: 2022-06-15. If you need help checking exposure, call (864) 335-9223.

Actively exploited (KEV)Ransomware

CVE-2013-0422

Oracle JRE Remote Code Execution Vulnerability

Oracle Java Runtime Environment (JRE) is listed in CISA's Known Exploited Vulnerabilities catalog (CVE-2013-0422). A vulnerability in the way Java restricts the permissions of Java applets could allow an attacker to execute commands on a vulnerable system. CISA remediation due date: 2022-06-15. If you need help checking exposure, call (864) 335-9223.